Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-24646 | Helm May Panic Due To Incorrect YAML Content |
Github GHSA |
GHSA-f9f8-9pmf-xv68 | Helm May Panic Due To Incorrect YAML Content |
Thu, 21 Aug 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:helm:helm:*:*:*:*:*:*:*:* |
Thu, 14 Aug 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 14 Aug 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Helm
Helm helm |
|
| Vendors & Products |
Helm
Helm helm |
Thu, 14 Aug 2025 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Wed, 13 Aug 2025 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Helm is a package manager for Charts for Kubernetes. Prior to version 3.18.5, when parsing Chart.yaml and index.yaml files, an improper validation of type error can lead to a panic. This issue has been resolved in Helm 3.18.5. A workaround involves ensuring YAML files are formatted as Helm expects prior to processing them with Helm. | |
| Title | Helm May Panic Due To Incorrect YAML Content | |
| Weaknesses | CWE-908 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-08-14T14:50:32.593Z
Reserved: 2025-08-08T21:55:07.964Z
Link: CVE-2025-55198
Updated: 2025-08-14T13:41:03.814Z
Status : Analyzed
Published: 2025-08-14T00:15:26.557
Modified: 2025-08-21T21:28:21.383
Link: CVE-2025-55198
OpenCVE Enrichment
Updated: 2025-08-14T12:50:46Z
EUVD
Github GHSA